2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-56759HIGH7.8In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free when COWing tree bock and...
CVE-2024-56758MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: check folio mapping after unlock in relocate...
CVE-2024-56757MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: add intf release flow w...
CVE-2024-55605HIGH7.5Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Pr...
CVE-2024-51472LOW3.1IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vuln...
CVE-2024-47475MEDIUM5.5Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerab...
CVE-2024-51112MEDIUM6.1Open Redirect vulnerability in Pnetlab 5.3.11 allows an attacker to manipulate URLs to redirect users to arbitrary exter...
CVE-2024-51111MEDIUM4.1Cross-Site Scripting (XSS) vulnerability in Pnetlab 5.3.11 allows an attacker to inject malicious scripts into a web pag...
CVE-2024-31914MEDIUM6.4IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored...
CVE-2024-31913MEDIUM5.4IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored...
CVE-2024-8474HIGH7.5OpenVPN Connect before version 3.5.0 can contain the configuration profile's clear-text private key which is logged in t...
CVE-2024-12997——Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r...
CVE-2024-12996——Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r...
CVE-2024-5594CRITICAL9.1OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to ...
CVE-2024-12970LOW3.9Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TUBITAK BILG...
CVE-2024-45559MEDIUM5.5Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
CVE-2024-45558HIGH7.5Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without ch...
CVE-2024-45555HIGH7.8Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows u...
CVE-2024-45553HIGH7.8Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global...
CVE-2024-45550HIGH7.8Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.
CVE-2024-45548HIGH7.8Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
CVE-2024-45547HIGH7.8Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryp...
CVE-2024-45546HIGH7.8Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
CVE-2024-45542HIGH7.8Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2024-45541HIGH7.8Memory corruption when IOCTL call is invoked from user-space to read board data.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now